CVE-2020-8436: XSS
Published Mar 12, 2020
·Updated
XSS was discovered in the RegistrationMagic plugin 4.6.0.0 for WordPress via the rmformid, rmtr, or formname parameter.
Affected Software
1 affected component
Metagauss Registrationmagic Wordpress=4.6.0.0
Event History
Mar 12, 2020
CVE Published
via MITRE·01:31 PM
Data Sourced
via MITRE·01:31 PM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-8436?
The severity of CVE-2020-8436 is medium, with a severity value of 6.1.
2
What is CVE-2020-8436?
CVE-2020-8436 refers to a Cross-Site Scripting (XSS) vulnerability discovered in the RegistrationMagic plugin 4.6.0.0 for WordPress.
3
Which software is affected by CVE-2020-8436?
The RegistrationMagic plugin version 4.6.0.0 for WordPress is affected by CVE-2020-8436.
4
How can the XSS vulnerability in CVE-2020-8436 be exploited?
The vulnerability can be exploited by manipulating the rm_form_id, rm_tr, or form_name parameter in the RegistrationMagic plugin for WordPress.
5
Are there any fixes or patches available for CVE-2020-8436?
At this time, it is recommended to update to the latest version of the RegistrationMagic plugin for WordPress to mitigate the XSS vulnerability.